Data protection is the safeguarding of the privacy rights of individuals in relation to the processing of personal data.
We must lawfully and fairly process personal data about service users, employees, suppliers and other individuals.
This page contains guidance and forms to help HSE staff in understanding the requirements of data protection regulation.
Glossary of data protection terms (PDF, 363KB, 2 pages)
Contact data protection officers
Policies and guidelines
Security and Recording of Personal Hard Copy Data During Service Relocation (PDF, 292 KB, 4 pages)
Password Privacy Reminder (Word, 60 KB, 1 page)
Data Protection Procedures for Handling Requests for Access to Records (PDF, 330KB, 8 pages)
Privacy Notice Summary (PDF, 315 KB, 2 pages)
Privacy Notice Employees (PDF, 508 KB, 8 pages)
Privacy Notice for Patients and Service Users
General Data Protection Regulation (GDPR) - it's everyone's responsibility (PDF, 389 KB, 10 pages)
Data Breach Guidance (PDF, 404 KB, 6 pages)
Creation and Disposal of Hard Copy Patient Lists (PDF, 270 KB, 4 pages)
Forms and template letters
Data breach
Data breach incident reporting form (internal) (to be completed by HSE employees and their line manager). Refer to Data breach guidance (PDF, 404 KB, 6 pages)
Data breach incident reporting form (external) (to be completed by data processors when notifying the HSE as a data controller)
Privacy Impact Assessment (PIA)
Privacy Impact Assessment (PIA) process guidance (PDF, 213 KB, 10 pages)
Privacy Impact Assessment (PIA) form. Refer to Data protection procedures for handling requests for access to records (PDF, 330 KB, 8 pages)
Subject Access Request (SARS)
Request forms
Subject Access Request (SARS) form (PDF, 76 KB, 1 page)
Subject Access Request (SARS) form as gaeilge (PDF, 171 KB, 1 page)
Template decision letters
The template decision letters are a guide for decision makers. Each letter must be adapted for each individual request.
SARS template letter (Word, 68 KB, 25 pages)
SARS template letter (PDF, 344 KB, 25 pages)
GDPR
Request for rectification/erasure of personal data under GDPR (PDF, 209 KB, 3 pages)
GDPR data disclosees (PDF, 141 KB, 3 pages)
GDPR records of processing activities template (Excel, 580 KB)
GDPR faqs (PDF, 178 KB, 7 pages)
Posters
Subject Access Requests (SARS) poster (PDF, 221 KB, 1 page)
Subject Access Requests (SARS) poster as gaeilge (PDF, 81 KB, 1 page)
Data protection notice (Powerpoint, 495 KB, 1 page)
GDPR staff notice (PDF, 110 KB, 1 page)
Personal data in the HSE poster (PDF, 74 KB, 2 pages)
Privacy poster (PDF, 179 KB, 1 page)HSE Privacy Notice - Employees
Contact
Data Protection Officer (DPO)
Mary Deasy, DPO and Head of Data Protection
Email: dpo@hse.ie
Address: HSE National Data Protection Office, Dr Steevens Hospital, Steevens Lane, Dublin 8 D08 W2A8
Area Data Protection Officers
Deputy Data Protection Officer West (excluding voluntary agencies)
CHO 1 – Cavan, Donegal, Leitrim, Monaghan, Sligo
- Community Healthcare West – Galway, Mayo, Roscommon
- Mid-West Community Healthcare – Clare, Limerick, North
- Tipperary
- Saolta Hospital Group
Email: ddpo.west@hse.ie
Phone: 091 775 373
Address: Consumer Affairs, Merlin Park University Hospital, Galway
Deputy Data Protection Officer Dublin North-East (excluding voluntary hospitals and agencies)
- Midlands, Louth, Meath Community Health Organisation
- Community Health Organisation Dublin North City & County
- CHO 6 – Dublin South East, Dublin South and Wicklow
- RCSI Hospital Group
- National Children’s Hospital
Email: ddpo.dne@hse.ie
Phone: Kells Office: 046 925 1265
Phone: Cavan Office: 049 437 7343
Address: Consumer Affairs, HSE Dublin North East, Bective St., Kells, Co Meath
Deputy Data Protection Officer Dublin mid-Leinster (excluding voluntary hospitals and agencies)
- Dublin Midlands Hospital Group
- Ireland East Hospital Group
- Community Healthcare Dublin South, Kildare and West Wicklow
Email: ddpo.dml@hse.ie
Phone: Tullamore Office: 057 935 7876
Phone: Naas Office: 045 920 105
Address: Hospital Campus, Arden Road, Tullamore, Co. Offaly
Deputy Data Protection Officer South (excluding voluntary hospitals and agencies)
- Cork and Kerry Community Healthcare
- CHO 5 – Carlow, Kilkenny, South Tipperary, Waterford, Wexford
- UL Hospital Group
- South South-West Hospital Group
Email: ddpo.south@hse.ie
Phone: Cork Office: 021 492 1553
Phone: Kilkenny Office: 056 778 5598
Address: Consumer Affairs, HSE South-West, 1A & 1B Ground Floor, Erinville, Western Road, Cork T12 EDK0
Related links
General Data Protection Guidance Regulation (GDPR)
European Data Protection Board statement